<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<rss xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title>Most recent entries from all</title>
    <link>https://cve.radiocsirt.org</link>
    <description>Contains only the most 10 recent entries.</description>
    <docs>http://www.rssboard.org/rss-specification</docs>
    <generator>python-feedgen</generator>
    <language>en</language>
    <lastBuildDate>Mon, 05 Oct 2026 12:55:33 +0000</lastBuildDate>
    <item>
      <title>bdu:2019-03005</title>
      <link>https://cve.radiocsirt.org/vuln/bdu:2019-03005</link>
      <description>bdu:2019-03005</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/bdu:2019-03005</guid>
    </item>
    <item>
      <title>certfr-2019-avi-004 — De multiples vulnérabilités ont été découvertes dans les produits
Siemens. Certaines d'entre elles permettent à un atta…</title>
      <link>https://cve.radiocsirt.org/vuln/certfr-2019-avi-004</link>
      <description>certfr-2019-avi-004</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/certfr-2019-avi-004</guid>
    </item>
    <item>
      <title>cnvd-2019-00989</title>
      <link>https://cve.radiocsirt.org/vuln/cnvd-2019-00989</link>
      <description>cnvd-2019-00989</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/cnvd-2019-00989</guid>
    </item>
    <item>
      <title>EUVD-2026-66769</title>
      <link>https://cve.radiocsirt.org/vuln/euvd-2026-66769</link>
      <description>EUVD-2026-66769</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/euvd-2026-66769</guid>
    </item>
    <item>
      <title>fkie_cve-2018-13810</title>
      <link>https://cve.radiocsirt.org/vuln/fkie_cve-2018-13810</link>
      <description>&lt;p&gt;A vulnerability has been identified in CP 1604 (All versions), CP 1616 (All versions). The integrated configuration web server of the affected CP devices could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link. Successful exploitation requires user interaction by a legitimate user. A successful attack could allow an attacker to trigger actions via the web interface that the legitimate user is allowed to perform. At the time of advisory publication no public exploitation of this vulnerability was known.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in CP 1604 (All versions), CP 1616 (All versions). The integrated configuration web server of the affected CP devices could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link. Successful exploitation requires user interaction by a legitimate user. A successful attack could allow an attacker to trigger actions via the web interface that the legitimate user is allowed to perform. At the time of advisory publication no public exploitation of this vulnerability was known.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/fkie_cve-2018-13810</guid>
    </item>
    <item>
      <title>GHSA-23g5-r56j-rmx3</title>
      <link>https://cve.radiocsirt.org/vuln/ghsa-23g5-r56j-rmx3</link>
      <description>&lt;p&gt;A vulnerability has been identified in CP 1604 (All versions), CP 1616 (All versions). The integrated configuration web server of the affected CP devices could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link. Successful exploitation requires user interaction by a legitimate user. A successful attack could allow an attacker to trigger actions via the web interface that the legitimate user is allowed to perform. At the time of advisory publication no public exploitation of this vulnerability was known.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;A vulnerability has been identified in CP 1604 (All versions), CP 1616 (All versions). The integrated configuration web server of the affected CP devices could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link. Successful exploitation requires user interaction by a legitimate user. A successful attack could allow an attacker to trigger actions via the web interface that the legitimate user is allowed to perform. At the time of advisory publication no public exploitation of this vulnerability was known.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/ghsa-23g5-r56j-rmx3</guid>
    </item>
    <item>
      <title>gsd-2018-13810</title>
      <link>https://cve.radiocsirt.org/vuln/gsd-2018-13810</link>
      <description>gsd-2018-13810</description>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/gsd-2018-13810</guid>
    </item>
    <item>
      <title>ICSA-19-043-06 — ICSA-19-043-06 Siemens CP1604 and CP1616 (Update A)</title>
      <link>https://cve.radiocsirt.org/vuln/icsa-19-043-06</link>
      <description>&lt;p&gt;An attacker with network access to port 23/tcp could extract internal communication data or cause a Denial-of-Service condition. Successful exploitation requires network access to a vulnerable device. At the time of advisory publication no public exploitation of this vulnerability was known. The integrated web server of the affected CP devices could allow Cross-Site Scripting (XSS) attacks if unsuspecting users are tricked into following a malicious link. User interaction is required for a successful exploitation. At the time of advisory publication no public exploitation of this vulnerability was known. The integrated configuration web server of the affected CP devices could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link. Successful exploitation requires user interaction by a legitimate user. A successful attack could allow an attacker to trigger actions via the web interface that the legitimate user is allowed to perform. At the time of advisory publication no public exploitation of this vulnerability was known.&lt;/p&gt;</description>
      <content:encoded>&lt;p&gt;An attacker with network access to port 23/tcp could extract internal communication data or cause a Denial-of-Service condition. Successful exploitation requires network access to a vulnerable device. At the time of advisory publication no public exploitation of this vulnerability was known. The integrated web server of the affected CP devices could allow Cross-Site Scripting (XSS) attacks if unsuspecting users are tricked into following a malicious link. User interaction is required for a successful exploitation. At the time of advisory publication no public exploitation of this vulnerability was known. The integrated configuration web server of the affected CP devices could allow a Cross-Site Request Forgery (CSRF) attack if an unsuspecting user is tricked into accessing a malicious link. Successful exploitation requires user interaction by a legitimate user. A successful attack could allow an attacker to trigger actions via the web interface that the legitimate user is allowed to perform. At the time of advisory publication no public exploitation of this vulnerability was known.&lt;/p&gt;</content:encoded>
      <guid isPermaLink="false">https://cve.radiocsirt.org/vuln/icsa-19-043-06</guid>
    </item>
  </channel>
</rss>
